Commit graph

1101 commits

Author SHA1 Message Date
3605790573
Merge pull request 'update element-web to 1.11.103 to fix security vulnerability' (#394) from security/element-web into main
Reviewed-on: #394
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-18 08:30:56 +00:00
6f790a7092
overlays: update element-web to 1.11.103
All checks were successful
Flake checks / Check (pull_request) Successful in 23m55s
to fix security vulnerability CVE-2025-48937 / GHSA-x958-rvg6-956w
2025-06-17 17:53:25 +02:00
3ab0d6cea7
Merge pull request 'chore: update php and other packages' (#391) from update-flake-lock into main
Reviewed-on: #391
Reviewed-by: teutat3s <teutat3s@noreply.git.pub.solar>
2025-06-16 16:29:09 +00:00
0f2968b55f
Merge pull request 'core/networking: use mkDefault for nameservers' (#390) from dns-mkdefault into main
Reviewed-on: #390
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-16 16:24:52 +00:00
ce8fef8682
core/networking: use mkDefault for nameservers
All checks were successful
Flake checks / Check (pull_request) Successful in 21m35s
2025-06-15 20:23:20 +00:00
0f95399f1b
Merge pull request 'tankstelle: add-new-ipv4' (#392) from tankstelle-add-new-ipv4 into main
Reviewed-on: #392
Reviewed-by: teutat3s <teutat3s@noreply.git.pub.solar>
2025-06-15 20:23:07 +00:00
4314aad960
Merge pull request 'tankstelle: add second CI runner tankstellezwei' (#393) from tankstelle-2nd-runner into main
Reviewed-on: #393
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-15 19:05:53 +00:00
ea3a781599
tankstelle: add second CI runner tankstellezwei
All checks were successful
Flake checks / Check (pull_request) Successful in 22m59s
2025-06-15 18:03:56 +02:00
3b235cb5b8
underground: remove nameservers, use default from
All checks were successful
Flake checks / Check (pull_request) Successful in 21m51s
core/networking/networking.nix
2025-06-15 16:56:41 +02:00
58573f1e87
tankstelle: remove nameservers, use default from
core/networking/networking.nix
2025-06-15 16:56:14 +02:00
bdd351730f
automated: Update flake.lock
All checks were successful
Flake checks / Check (pull_request) Successful in 21m55s
- The following Nix Flake inputs were updated:

```
• Updated input 'nix-darwin':
    'github:lnl7/nix-darwin/19346808c445f23b08652971be198b9df6c33edc?narHash=sha256-vt6hM9DNywnXXuW1qPDLzECmbDcmxhh58wpb0EEQjAo%3D' (2025-06-06)
  → 'github:lnl7/nix-darwin/2f140d6ac8840c6089163fb43ba95220c230f22b?narHash=sha256-1Mc/D/1RwwmDKY59f4IpDBgcQttxffm%2B4o0m67lQ8hc%3D' (2025-06-14)
• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/ed29f002b6d6e5e7e32590deb065c34a31dc3e91?narHash=sha256-ENY3y3v6S9ZmLDDLI3LUT8MXmfXg/fSt2eA4GCnMVCE%3D' (2025-06-06)
  → 'github:nixos/nixpkgs/1965fd20a39c8e441746bee66d550af78f0c0a7b?narHash=sha256-gaWJEWGBW/g1u6o5IM4Un0vluv86cigLuBnjsKILffc%3D' (2025-06-11)
• Updated input 'unstable':
    'github:nixos/nixpkgs/3e3afe5174c561dee0df6f2c2b2236990146329f?narHash=sha256-frdhQvPbmDYaScPFiCnfdh3B/Vh81Uuoo0w5TkWmmjU%3D' (2025-06-07)
  → 'github:nixos/nixpkgs/ee930f9755f58096ac6e8ca94a1887e0534e2d81?narHash=sha256-Kh9K4taXbVuaLC0IL%2B9HcfvxsSUx8dPB5s5weJcc9pc%3D' (2025-06-13)
```

- Closure diff:

```
ldb: 2.9.1 → 2.9.2
nixos-system-nachtigall: 24.11.20250606.ed29f00 → 24.11.20250611.1965fd2
php: 8.3.21 → 8.3.22
php-bcmath: 8.3.21 → 8.3.22
php-bz2: 8.3.21 → 8.3.22
php-calendar: 8.3.21 → 8.3.22
php-ctype: 8.3.21 → 8.3.22
php-curl: 8.3.21 → 8.3.22
php-dom: 8.3.21 → 8.3.22
php-exif: 8.3.21 → 8.3.22
php-extra-init: 8.3.21.ini → 8.3.22.ini
php-fileinfo: 8.3.21 → 8.3.22
php-filter: 8.3.21 → 8.3.22
php-ftp: 8.3.21 → 8.3.22
php-gd: 8.3.21 → 8.3.22
php-gettext: 8.3.21 → 8.3.22
php-gmp: 8.3.21 → 8.3.22
php-iconv: 8.3.21 → 8.3.22
php-intl: 8.3.21 → 8.3.22
php-ldap: 8.3.21 → 8.3.22
php-mbstring: 8.3.21 → 8.3.22
php-mysqli: 8.3.21 → 8.3.22
php-mysqlnd: 8.3.21 → 8.3.22
php-opcache: 8.3.21 → 8.3.22
php-openssl: 8.3.21 → 8.3.22
php-pcntl: 8.3.21 → 8.3.22
php-pdo: 8.3.21 → 8.3.22
php-pdo_mysql: 8.3.21 → 8.3.22
php-pdo_odbc: 8.3.21 → 8.3.22
php-pdo_pgsql: 8.3.21 → 8.3.22
php-pdo_sqlite: 8.3.21 → 8.3.22
php-pgsql: 8.3.21 → 8.3.22
php-posix: 8.3.21 → 8.3.22
php-readline: 8.3.21 → 8.3.22
php-session: 8.3.21 → 8.3.22
php-simplexml: 8.3.21 → 8.3.22
php-soap: 8.3.21 → 8.3.22
php-sockets: 8.3.21 → 8.3.22
php-sodium: 8.3.21 → 8.3.22
php-sqlite3: 8.3.21 → 8.3.22
php-sysvsem: 8.3.21 → 8.3.22
php-tokenizer: 8.3.21 → 8.3.22
php-with-extensions: 8.3.21 → 8.3.22
php-xmlreader: 8.3.21 → 8.3.22
php-xmlwriter: 8.3.21 → 8.3.22
php-zip: 8.3.21 → 8.3.22
php-zlib: 8.3.21 → 8.3.22
samba: 4.20.4 → 4.20.8, +756.2 KiB
source: +970.0 KiB
```

This PR was auto-generated.
2025-06-14 21:47:27 +00:00
cdc3828814
treefmt
All checks were successful
Flake checks / Check (pull_request) Successful in 21m31s
2025-06-14 23:45:39 +02:00
554620a248
tankstelle: add ipv4 2025-06-14 23:31:08 +02:00
722d027070
tankstelle: add ipv4 2025-06-14 23:28:54 +02:00
2ba3ddbd05
Merge pull request 'update linux, fix deploy-rs overlay name' (#388) from flake-updates into main
Reviewed-on: #388
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-12 12:51:39 +00:00
83e386de3a
Merge pull request 'draupnir: switch to official nixos module, update to version 2.3.1' (#387) from draupnir-2.3.1 into main
Reviewed-on: #387
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-12 12:51:23 +00:00
06d57037c0
core/nix: don't build nixos documentation
Some checks failed
Flake checks / Check (pull_request) Failing after 1h17m5s
2025-06-12 14:50:10 +02:00
1927435cd4
Merge pull request 'nextcloud: fix settings that need to be quoted' (#386) from nextcloud-settings into main
Reviewed-on: #386
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-11 21:02:51 +00:00
2ef1c2a0ad
Merge pull request 'style: fix treefmt warnings' (#381) from style-treefmt-warnings into main
Reviewed-on: #381
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-11 21:02:05 +00:00
2204e30675
Merge pull request 'core, docker: reduce disk usage' (#382) from reduce-disk-usage into main
Reviewed-on: #382
Reviewed-by: hensoko <hensoko@noreply.git.pub.solar>
2025-06-11 21:01:58 +00:00
4952a38fd1
Merge pull request 'remove ipv4 from tankstelle' (#389) from remove-ipv4 into main
Reviewed-on: #389
Reviewed-by: teutat3s <teutat3s@noreply.git.pub.solar>
2025-06-11 09:38:07 +00:00
24cf601200
remove ipv4 for tankstelle.pub.solar
All checks were successful
Flake checks / Check (pull_request) Successful in 21m21s
2025-06-11 02:55:46 +02:00
76de13e12f
update wireguard endpoints
All checks were successful
Flake checks / Check (pull_request) Successful in 27m3s
2025-06-11 02:38:14 +02:00
f81243bee7
tankstelle: remove ipv4 2025-06-11 01:38:05 +02:00
d26da0f5ce
use ipv6 nameservers 2025-06-11 01:31:03 +02:00
93935df0a0
add ipv6 for tankstelle 2025-06-11 01:24:37 +02:00
a37cffdcea
flake.lock: Update
All checks were successful
Flake checks / Check (pull_request) Successful in 24m24s
Flake lock file updates:

• Updated input 'deploy-rs':
    'github:serokell/deploy-rs/aa07eb05537d4cd025e2310397a6adcedfe72c76' (2024-09-27)
  → 'github:serokell/deploy-rs/6bc76b872374845ba9d645a2f012b764fecd765f' (2025-06-05)
• Updated input 'deploy-rs/flake-compat':
    'github:edolstra/flake-compat/0f9255e01c2351cc7d116c072cb317785dd33b33' (2023-10-04)
  → 'github:edolstra/flake-compat/ff81ac966bb2cae68946d5ed5fc4994f96d0ffec' (2024-12-04)
• Updated input 'deploy-rs/utils':
    'github:numtide/flake-utils/4022d587cbbfd70fe950c1e2083a02621806a725' (2023-12-04)
  → 'github:numtide/flake-utils/11707dc2f618dd54ca8739b309ec4fc024de578b' (2024-11-13)
• Updated input 'disko':
    'github:nix-community/disko/a894f2811e1ee8d10c50560551e50d6ab3c392ba' (2025-05-26)
  → 'github:nix-community/disko/dfa4d1b9c39c0342ef133795127a3af14598017a' (2025-06-09)
• Updated input 'flake-parts':
    'github:hercules-ci/flake-parts/c621e8422220273271f52058f618c94e405bb0f5' (2025-04-01)
  → 'github:hercules-ci/flake-parts/9305fe4e5c2a6fcf5ba6a3ff155720fbe4076569' (2025-06-08)
• Updated input 'flake-parts/nixpkgs-lib':
    'github:nix-community/nixpkgs.lib/e4822aea2a6d1cdd36653c134cacfd64c97ff4fa' (2025-03-30)
  → 'github:nix-community/nixpkgs.lib/656a64127e9d791a334452c6b6606d17539476e2' (2025-06-01)
• Updated input 'nix-darwin':
    'github:lnl7/nix-darwin/44a7d0e687a87b73facfe94fba78d323a6686a90' (2025-05-27)
  → 'github:lnl7/nix-darwin/19346808c445f23b08652971be198b9df6c33edc' (2025-06-06)
• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/78add7b7abb61689e34fc23070a8f55e1d26185b' (2025-05-28)
  → 'github:nixos/nixpkgs/ed29f002b6d6e5e7e32590deb065c34a31dc3e91' (2025-06-06)
• Updated input 'unstable':
    'github:nixos/nixpkgs/96ec055edbe5ee227f28cdbc3f1ddf1df5965102' (2025-05-28)
  → 'github:nixos/nixpkgs/3e3afe5174c561dee0df6f2c2b2236990146329f' (2025-06-07)
2025-06-09 22:11:39 +02:00
5e8d21e63e
draupnir: switch to official nixos module, update
Some checks failed
Flake checks / Check (pull_request) Failing after 24m56s
to version 2.3.1
2025-06-09 21:47:34 +02:00
4d16aa4b37
nextcloud: fix overwrite url setting, remove settings
All checks were successful
Flake checks / Check (pull_request) Successful in 29m9s
that are set to default, or commented out, add helpful comments,
see: https://docs.nextcloud.com/server/30/admin_manual/configuration_server/config_sample_php_parameters.html
2025-06-09 21:41:54 +02:00
3eb76938b1
modules/core: nix: optimize automatic garbage collection
All checks were successful
Flake checks / Check (pull_request) Successful in 23m43s
2025-05-30 19:05:34 +02:00
36effe294d
modules/docker: enable autoprune 2025-05-30 19:05:21 +02:00
8916bc55ba
modules/core: add boot.nix, set defaults for nixos configuration limits to 15 2025-05-30 19:05:04 +02:00
1486fa6d4e
style: format workflow yml files
All checks were successful
Flake checks / Check (pull_request) Successful in 23m37s
2025-05-30 19:04:03 +02:00
03f51df923
style: format terraform/opentofu tf files 2025-05-30 19:03:42 +02:00
efd31a6c48
style: fix treefmt warnings 2025-05-30 19:03:21 +02:00
0ebadbce2f
Merge pull request 'automated: Update flake.lock' (#371) from update-flake-lock into main
Reviewed-on: #371
Reviewed-by: teutat3s <teutat3s@noreply.git.pub.solar>
2025-05-30 16:34:41 +00:00
669feb42f0
flake.lock: Update
Some checks failed
Flake checks / Check (pull_request) Failing after 48m15s
Flake lock file updates:

• Updated input 'disko':
    'github:nix-community/disko/df522e787fdffc4f32ed3e1fca9ed0968a384d62' (2025-05-20)
  → 'github:nix-community/disko/a894f2811e1ee8d10c50560551e50d6ab3c392ba' (2025-05-26)
• Updated input 'nix-darwin':
    'github:lnl7/nix-darwin/33220d4791784e4dd4739edd3f6c028020082f91' (2025-05-23)
  → 'github:lnl7/nix-darwin/44a7d0e687a87b73facfe94fba78d323a6686a90' (2025-05-27)
• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/2baa12ff69913392faf0ace833bc54bba297ea95' (2025-05-21)
  → 'github:nixos/nixpkgs/78add7b7abb61689e34fc23070a8f55e1d26185b' (2025-05-28)
• Updated input 'nixpkgs-draupnir':
    'github:teutat3s/nixpkgs/f939c167dab21923b09a70c561e4fcf06e2adf87' (2025-05-22)
  → 'github:teutat3s/nixpkgs/cd77d71db7a6a7a0a17c4d067891619580898400' (2025-05-30)
• Updated input 'unstable':
    'github:nixos/nixpkgs/2795c506fe8fb7b03c36ccb51f75b6df0ab2553f' (2025-05-20)
  → 'github:nixos/nixpkgs/96ec055edbe5ee227f28cdbc3f1ddf1df5965102' (2025-05-28)
2025-05-30 17:44:09 +02:00
8dde9891c2
automated: Update flake.lock
All checks were successful
Flake checks / Check (pull_request) Successful in 25m29s
- The following Nix Flake inputs were updated:

```
• Updated input 'agenix':
    'github:ryantm/agenix/96e078c646b711aee04b82ba01aefbff87004ded?narHash=sha256-bHCFgGeu8XjWlVuaWzi3QONjDW3coZDqSHvnd4l7xus%3D' (2025-04-26)
  → 'github:ryantm/agenix/4835b1dc898959d8547a871ef484930675cb47f1?narHash=sha256-NwmAFuDUO/PFcgaGGr4j3ozG9Pe5hZ/ogitWhY%2BD81k%3D' (2025-05-18)
• Updated input 'codeberg-pages':
    'github:nixos/nixpkgs/97bfb3064cbc26a3c58c1a4c4b795662c4eb6389?narHash=sha256-wzbXqlKSM75ISbtVkZK5oxosG2A773iZmtdAL4SSufg%3D' (2025-04-03)
  → 'github:nixos/nixpkgs/1d108073d9d02909cdf8784b00d574fb44b938af?narHash=sha256-QIaG3CgMEda5yhQA3mqS5JoGm2/CrLboY3lKncCdQ7k%3D' (2025-04-27)
• Updated input 'disko':
    'github:nix-community/disko/85555d27ded84604ad6657ecca255a03fd878607?narHash=sha256-9R4sOLAK1w3Bq54H3XOJogdc7a6C2bLLmatOQ%2B5pf5w%3D' (2025-05-08)
  → 'github:nix-community/disko/df522e787fdffc4f32ed3e1fca9ed0968a384d62?narHash=sha256-kYL4GCwwznsypvsnA20oyvW8zB/Dvn6K5G/tgMjVMT4%3D' (2025-05-20)
• Updated input 'home-manager':
    'github:nix-community/home-manager/b4bbdc6fde16fc2051fcde232f6e288cd22007ca?narHash=sha256-D/6rkiC6w2p%2B4SwRiVKrWIeYzun8FBg7NlMKMwQMxO0%3D' (2025-05-12)
  → 'github:nix-community/home-manager/d5f1f641b289553927b3801580598d200a501863?narHash=sha256-ypL9WAZfmJr5V70jEVzqGjjQzF0uCkz%2BAFQF7n9NmNc%3D' (2025-05-19)
• Updated input 'nix-darwin':
    'github:lnl7/nix-darwin/6cb36e8327421c61e5a3bbd08ed63491b616364a?narHash=sha256-GeC99gu5H6%2BAjBXsn5dOhP4/ApuioGCBkufdmEIWPRs%3D' (2025-05-08)
  → 'github:lnl7/nix-darwin/33220d4791784e4dd4739edd3f6c028020082f91?narHash=sha256-XodjkVWTth3A2JpBqGBkdLD9kkWn94rnv98l3xwKukg%3D' (2025-05-23)
• Updated input 'nixpkgs':
    'github:nixos/nixpkgs/a39ed32a651fdee6842ec930761e31d1f242cb94?narHash=sha256-k9ut1LSfHCr0AW82ttEQzXVCqmyWVA5%2BSHJkS5ID/Jo%3D' (2025-05-11)
  → 'github:nixos/nixpkgs/2baa12ff69913392faf0ace833bc54bba297ea95?narHash=sha256-U4HaNZ1W26cbOVm0Eb5OdGSnfQVWQKbLSPrSSa78KC0%3D' (2025-05-21)
• Updated input 'unstable':
    'github:nixos/nixpkgs/d89fc19e405cb2d55ce7cc114356846a0ee5e956?narHash=sha256-3e%2BAVBczosP5dCLQmMoMEogM57gmZ2qrVSrmq9aResQ%3D' (2025-05-10)
  → 'github:nixos/nixpkgs/2795c506fe8fb7b03c36ccb51f75b6df0ab2553f?narHash=sha256-W7lqHp0qZiENCDwUZ5EX/lNhxjMdNapFnbErcbnP11Q%3D' (2025-05-20)
```

- Closure diff:

```
cpupower: 6.6.89 → 6.6.91
initrd-linux: 6.6.89 → 6.6.91
linux: 6.6.89, 6.6.89-modules → 6.6.91, 6.6.91-modules, +17.7 KiB
nextcloud: 30.0.10, 30.0.10-with → 30.0.11, 30.0.11-with, -4270.1 KiB
nextcloud-app-calendar: 5.2.1 → 5.2.4, +762.1 KiB
nextcloud-app-contacts: 7.0.6 → 7.1.0, +117.7 KiB
nextcloud-app-deck: 1.14.4 → 1.14.5, +322.8 KiB
nextcloud-app-mail: 5.0.0 → 5.0.7, +560.3 KiB
nextcloud-app-richdocuments: 8.5.6 → 8.5.7, -2876.2 KiB
nextcloud-app-user_oidc: 7.1.0 → 7.2.0, +139.1 KiB
nixos-system-nachtigall: 24.11.20250511.a39ed32 → 24.11.20250521.2baa12f
nodejs-slim: 22.14.0 → 22.16.0, +3761.9 KiB
source: -494.2 KiB
zfs-kernel: 2.2.7-6.6.89 → 2.2.7-6.6.91
```

This PR was auto-generated.
2025-05-24 03:42:04 +00:00
ad57bd0027
Merge pull request 'flake: use draupnir branch with nixos-24.11 base' (#379) from draupnir-24.11 into main
Reviewed-on: #379
2025-05-22 16:10:44 +00:00
8d423f4ed4
flake: use draupnir branch with nixos-24.11 base
All checks were successful
Flake checks / Check (pull_request) Successful in 23m50s
Just to make sure we're building draupnir compatible with NixOS 24.11
2025-05-22 10:59:06 +02:00
72c8350a05
Merge pull request 'matrix: switch to synapse-http-antispam module' (#378) from synapse-http-antispam into main
Reviewed-on: #378
Reviewed-by: Akshay Mankar <axeman@noreply.git.pub.solar>
2025-05-22 08:27:28 +00:00
23dd8c384b
style: treefmt
All checks were successful
Flake checks / Check (pull_request) Successful in 24m57s
2025-05-22 10:20:15 +02:00
f75783b898
draupnir: only enable synapseHTTPAntispam if secret set
Some checks failed
Flake checks / Check (pull_request) Failing after 26s
2025-05-22 01:21:12 +02:00
28abbfce2f
nachtigall: don't use staging secret
Some checks failed
Flake checks / Check (pull_request) Has been cancelled
2025-05-22 01:16:15 +02:00
51169cf580
style: treefmt
All checks were successful
Flake checks / Check (pull_request) Successful in 26m26s
2025-05-22 01:15:19 +02:00
68728eecd1
nachtigall: enable synapse-http-antispam module
Some checks failed
Flake checks / Check (pull_request) Failing after 39s
2025-05-22 01:07:01 +02:00
2a35eb8450
underground: enable synapse-http-antispam module 2025-05-22 01:06:27 +02:00
e2c4b61f16
matrix: update draupnir to latest beta, switch to
synapse-http-antispam module, add option for synapse-http-antispam secret
2025-05-22 01:05:41 +02:00
3f1c107e12
Merge pull request 'garage: fix wildcard certs' (#377) from garage-fix-wildcard into main
Reviewed-on: #377
Reviewed-by: Akshay Mankar <axeman@noreply.git.pub.solar>
2025-05-21 06:01:44 +00:00
3ef999955c
garage: fix wildcard certs
All checks were successful
Flake checks / Check (pull_request) Successful in 23m39s
2025-05-20 23:12:32 +02:00